February 9, 2026 · 3 min read

Egress costs — the gotcha that kills cloud-arbitrage plans

Cross-cloud data movement is billed by the GB. The bill is invisible until it isn't. A multi-region or multi-cloud architecture that doesn't model egress costs in design will discover them in production.

Multi-CloudCost OptimisationNetworking
February 8, 2026 · 3 min read

Data residency in the Gulf — UAE ADGM/DIFC + Saudi SAMA at Bancnet

An open-banking platform serving UAE and Saudi customers had to honour three overlapping regulators: ADGM (Abu Dhabi), DIFC (Dubai), and SAMA (Saudi central bank). Notes on the architecture that satisfied all three.

Data ResidencyUAESaudi ArabiaOpen Banking
February 6, 2026 · 2 min read

Workload Identity Federation Azure → GCP for a real migration

Moving a workload from Azure to GCP while it continues to authenticate against on-prem Azure AD (Entra ID). Federation lets the GCP workload assume a GCP service account based on its Azure identity.

AzureGCPWorkload Identity FederationMigration
February 5, 2026 · 3 min read

UPI integration — the spec quirks no one mentions

UPI is the most popular payment rail in India. The spec is precise. The implementation guides are not. Notes on the integration details that ate weeks the first time.

UPINPCIPaymentsFinTech
February 2, 2026 · 3 min read

Brownlow — Cloud KMS + Security Command Center for vote integrity

Vote integrity needed two things the platform team couldn't fake even by accident: signing keys we couldn't access, and continuous security monitoring we couldn't silence. KMS + SCC delivered both.

Cloud KMSSecurity Command CenterGCPVoting
February 1, 2026 · 3 min read

AIGP body of knowledge — a Go engineer's reading map

IAPP's AI Governance Professional certification covers a body of knowledge worth knowing whether you certify or not. The mapping from BOK to working Go code for the engineer who wants to understand AI governance practically.

AIGPAI GovernanceIAPPCompliance
January 31, 2026 · 3 min read

The board policy is not a slide — it's a YAML file

The bank's board approves an AI policy. The policy exists as a slide deck nobody reads. The risk team's actual operational policy is what's in the code. Closing that gap is the FREE-AI Rec 14 win.

AI GovernancePolicy as CodeFREE-AIOpinion